CVE-2023-23907

CVSS V2 None CVSS V3 None
Description
A directory traversal vulnerability exists in the server.js start functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead to arbitrary file read. An attacker can send a network request to trigger this vulnerability.
Overview
  • CVE ID
  • CVE-2023-23907
  • Assigner
  • talos
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-07-06T14:53:32.531Z
  • Last Modified Date
  • 2023-07-06T17:00:06.747Z
History
Created Old Value New Value Data Type Notes
2024-06-25 08:52:56 Added to TrackCVE